Merge ~pelpsi/lp-signing/+git/dependencies:gunicorn-upgrade-HTTP-request-smuggling-vulnerability into ~launchpad/lp-signing/+git/dependencies:master

Proposed by Simone Pelosi
Status: Merged
Approved by: Simone Pelosi
Approved revision: f24a4cc8ed4e6fb2188c9c773b3a263740653869
Merge reported by: Otto Co-Pilot
Merged at revision: not available
Proposed branch: ~pelpsi/lp-signing/+git/dependencies:gunicorn-upgrade-HTTP-request-smuggling-vulnerability
Merge into: ~launchpad/lp-signing/+git/dependencies:master
Diff against target: 4 lines (+0/-0)
0 files modified
Reviewer Review Type Date Requested Status
Guruprasad Approve
Review via email: mp+440423@code.launchpad.net

Commit message

Upgraded talisker to maximize compatibility with gunicorn

A penetration test found that our gunicorn version is vulnerable, version 20.1.0 should be safe.

To post a comment you must log in.
Revision history for this message
Guruprasad (lgp171188) wrote :

LGTM 👍🏼

review: Approve

Preview Diff

[H/L] Next/Prev Comment, [J/K] Next/Prev File, [N/P] Next/Prev Hunk
1diff --git a/talisker-0.20.0.tar.gz b/talisker-0.20.0.tar.gz
2new file mode 100644
3index 0000000..fe22479
4Binary files /dev/null and b/talisker-0.20.0.tar.gz differ

Subscribers

People subscribed via source and target branches